CWE-824 · 268 kayıt
Access of Uninitialized Pointer
Bu sınıftaki CVE’ler
269 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
77Bu hafta | CVE-2022-21971Silahlaştırılmış | Windows Runtime Remote Code Execution Vulnerabilitymicrosoft · windows 10 1809 · CWE-824 | Yüksek7,8 | KEV | %53,9 | 9 Şub 2022 |
75Bu hafta | CVE-2015-1770Silahlaştırılmış | Microsoft Office 2013 SP1 and 2013 RT SP1 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Ofmicrosoft · office · CWE-824 | Yüksek8,8 | KEV | %35,0 | 9 Haz 2015 |
50Planlayın | CVE-2010-1818Silahlaştırılmış | The IPersistPropertyBag2::Read function in QTPlugin.ocx in Apple QuickTime 6.x, 7.x before 7.6.8, and other versions allows remote attackersapple · quicktime · CWE-824 | Kritik9,3 | — | %42,7 | 31 Ağu 2010 |
48Planlayın | CVE-2018-11803İstismar yok | Subversion's mod_dav_svn Apache HTTPD module versions 1.11.0 and 1.10.0 to 1.10.3 will crash after dereferencing an uninitialized pointer ifapache · subversion · CWE-824 | Yüksek7,5 | — | %58,5 | 5 Şub 2019 |
48Planlayın | CVE-2017-12561Kavram kanıtı | A remote code execution vulnerability in HPE intelligent Management Center (iMC) PLAT version Plat 7.3 E0504P4 and earlier was found.hp · intelligent management center · CWE-824 | Kritik9,8 | — | %30,6 | 15 Şub 2018 |
45Planlayın | CVE-2018-9948Silahlaştırılmış | This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935.foxitsoftware · foxit reader · CWE-824 | Orta6,5 | — | %63,1 | 17 May 2018 |
44Planlayın | CVE-2019-0853İstismar yok | A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka microsoft · windows 10 · CWE-824 | Yüksek8,8 | — | %30,1 | 9 Nis 2019 |
43Planlayın | CVE-2007-2442İstismar yok | The gssrpc__svcauth_gssapi function in the RPC library in MIT Kerberos 5 (krb5) 1.6.1 and earlier might allow remote attackers to execute armit · kerberos 5 · CWE-824 | Kritik10,0 | — | %11,4 | 26 Haz 2007 |
43Planlayın | CVE-2009-0846İstismar yok | The asn1_decode_generaltime function in lib/krb5/asn.1/asn1_decode.c in the ASN.1 GeneralizedTime decoder in MIT Kerberos 5 (aka krb5) beformit · kerberos 5 · CWE-824 | Kritik10,0 | — | %8,9 | 8 Nis 2009 |
40Planlayın | CVE-2018-14356İstismar yok | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-824 | Kritik9,8 | — | %3,2 | 17 Tem 2018 |
40Planlayın | CVE-2020-17446İstismar yok | asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a craftedmagic · asyncpg · CWE-824 | Kritik9,8 | — | %2,4 | 12 Ağu 2020 |
40Planlayın | CVE-2018-11743İstismar yok | The init_copy function in kernel.c in mruby 1.4.1 makes initialize_copy calls for TT_ICLASS objects, which allows attackers to cause a deniamruby · mruby · CWE-824 | Kritik9,8 | — | %2,2 | 5 Haz 2018 |
40Planlayın | CVE-2020-25573İstismar yok | An issue was discovered in the linked-hash-map crate before 0.5.3 for Rust.linked-hash-map project · linked-hash-map · CWE-824 | Kritik9,8 | — | %1,8 | 14 Eyl 2020 |
40Planlayın | CVE-2021-36219İstismar yok | An issue was discovered in SKALE sgxwallet 1.58.3.skale · sgxwallet · CWE-824 | Kritik9,8 | — | %1,7 | 27 Eyl 2021 |
39İzleyin | CVE-2006-6143İstismar yok | The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other producmit · kerberos 5 · CWE-824 | Kritik9,3 | — | %7,9 | 31 Ara 2006 |
39İzleyin | CVE-2020-11138İstismar yok | Uninitialized pointers accessed during music play back with incorrect bit stream due to an uninitialized heap memory result in instability iqualcomm · apq8009 · CWE-824 | Kritik9,8 | — | %1,1 | 21 Oca 2021 |
39İzleyin | CVE-2026-2805İstismar yok | Invalid pointer in the DOM: Core & HTML componentmozilla · firefox · CWE-824 | Kritik9,8 | — | %0,6 | 24 Şub 2026 |
39İzleyin | CVE-2026-2785İstismar yok | Invalid pointer in the JavaScript Engine componentmozilla · firefox · CWE-824 | Kritik9,8 | — | %0,5 | 24 Şub 2026 |
39İzleyin | GHSA-h632-qvv7-2623İstismar yok | Duplicate Advisory: Open Babel has uninitialized pointer dereference in GRO residue parserPyPI · openbabel · CWE-824 | Kritik9,8 | — | — | 21 Tem 2023 |
39İzleyin | GHSA-7rcm-w6ff-j43wİstismar yok | Duplicate Advisory: Open Babel has uninitialized pointer dereference in PQS pFormatPyPI · openbabel · CWE-824 | Kritik9,8 | — | — | 21 Tem 2023 |
39İzleyin | GHSA-x3cp-4x6w-vm7pİstismar yok | Duplicate Advisory: Open Babel has out-of-bounds write in MOL2 attribute/value parserPyPI · openbabel · CWE-824 | Kritik9,8 | — | — | 21 Tem 2023 |
38İzleyin | CVE-2020-8882İstismar yok | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.916.foxitsoftware · foxit studio photo · CWE-824 | Yüksek8,8 | — | %11,1 | 20 Mar 2020 |
37İzleyin | CVE-2017-16378İstismar yok | An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.3035adobe · acrobat · CWE-824 | Yüksek8,8 | — | %6,8 | 9 Ara 2017 |
37İzleyin | CVE-2017-16377İstismar yok | An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.3035adobe · acrobat · CWE-824 | Yüksek8,8 | — | %6,8 | 9 Ara 2017 |
37İzleyin | CVE-2016-1005İstismar yok | Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIRadobe · flash player · CWE-824 | Yüksek8,8 | — | %5,3 | 12 Mar 2016 |
- CVE-2022-2197177Bu hafta
Windows Runtime Remote Code Execution Vulnerability
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %54microsoft · windows 10 18099 Şub 2022
- CVE-2015-177075Bu hafta
Microsoft Office 2013 SP1 and 2013 RT SP1 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Of
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %35microsoft · office9 Haz 2015
- CVE-2010-181850Planlayın
The IPersistPropertyBag2::Read function in QTPlugin.ocx in Apple QuickTime 6.x, 7.x before 7.6.8, and other versions allows remote attackers
KritikCVSS 9,3SilahlaştırılmışEPSS %43apple · quicktime31 Ağu 2010
- CVE-2018-1180348Planlayın
Subversion's mod_dav_svn Apache HTTPD module versions 1.11.0 and 1.10.0 to 1.10.3 will crash after dereferencing an uninitialized pointer if
YüksekCVSS 7,5İstismar yokEPSS %58apache · subversion5 Şub 2019
- CVE-2017-1256148Planlayın
A remote code execution vulnerability in HPE intelligent Management Center (iMC) PLAT version Plat 7.3 E0504P4 and earlier was found.
KritikCVSS 9,8Kavram kanıtıEPSS %31hp · intelligent management center15 Şub 2018
- CVE-2018-994845Planlayın
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935.
OrtaCVSS 6,5SilahlaştırılmışEPSS %63foxitsoftware · foxit reader17 May 2018
- CVE-2019-085344Planlayın
A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka
YüksekCVSS 8,8İstismar yokEPSS %30microsoft · windows 109 Nis 2019
- CVE-2007-244243Planlayın
The gssrpc__svcauth_gssapi function in the RPC library in MIT Kerberos 5 (krb5) 1.6.1 and earlier might allow remote attackers to execute ar
KritikCVSS 10,0İstismar yokEPSS %11mit · kerberos 526 Haz 2007
- CVE-2009-084643Planlayın
The asn1_decode_generaltime function in lib/krb5/asn.1/asn1_decode.c in the ASN.1 GeneralizedTime decoder in MIT Kerberos 5 (aka krb5) befor
KritikCVSS 10,0İstismar yokEPSS %9mit · kerberos 58 Nis 2009
- CVE-2018-1435640Planlayın
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
KritikCVSS 9,8İstismar yokEPSS %3mutt · mutt17 Tem 2018
- CVE-2020-1744640Planlayın
asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted
KritikCVSS 9,8İstismar yokEPSS %2magic · asyncpg12 Ağu 2020
- CVE-2018-1174340Planlayın
The init_copy function in kernel.c in mruby 1.4.1 makes initialize_copy calls for TT_ICLASS objects, which allows attackers to cause a denia
KritikCVSS 9,8İstismar yokEPSS %2mruby · mruby5 Haz 2018
- CVE-2020-2557340Planlayın
An issue was discovered in the linked-hash-map crate before 0.5.3 for Rust.
KritikCVSS 9,8İstismar yokEPSS %2linked-hash-map project · linked-hash-map14 Eyl 2020
- CVE-2021-3621940Planlayın
An issue was discovered in SKALE sgxwallet 1.58.3.
KritikCVSS 9,8İstismar yokEPSS %2skale · sgxwallet27 Eyl 2021
- CVE-2006-614339İzleyin
The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other produc
KritikCVSS 9,3İstismar yokEPSS %8mit · kerberos 531 Ara 2006
- CVE-2020-1113839İzleyin
Uninitialized pointers accessed during music play back with incorrect bit stream due to an uninitialized heap memory result in instability i
KritikCVSS 9,8İstismar yokEPSS %1qualcomm · apq800921 Oca 2021
- CVE-2026-280539İzleyin
Invalid pointer in the DOM: Core & HTML component
KritikCVSS 9,8İstismar yokEPSS %1mozilla · firefox24 Şub 2026
- CVE-2026-278539İzleyin
Invalid pointer in the JavaScript Engine component
KritikCVSS 9,8İstismar yokEPSS %0mozilla · firefox24 Şub 2026
- GHSA-h632-qvv7-262339İzleyin
Duplicate Advisory: Open Babel has uninitialized pointer dereference in GRO residue parser
KritikCVSS 9,8İstismar yokPyPI · openbabel21 Tem 2023
- GHSA-7rcm-w6ff-j43w39İzleyin
Duplicate Advisory: Open Babel has uninitialized pointer dereference in PQS pFormat
KritikCVSS 9,8İstismar yokPyPI · openbabel21 Tem 2023
- GHSA-x3cp-4x6w-vm7p39İzleyin
Duplicate Advisory: Open Babel has out-of-bounds write in MOL2 attribute/value parser
KritikCVSS 9,8İstismar yokPyPI · openbabel21 Tem 2023
- CVE-2020-888238İzleyin
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.916.
YüksekCVSS 8,8İstismar yokEPSS %11foxitsoftware · foxit studio photo20 Mar 2020
- CVE-2017-1637837İzleyin
An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.3035
YüksekCVSS 8,8İstismar yokEPSS %7adobe · acrobat9 Ara 2017
- CVE-2017-1637737İzleyin
An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.3035
YüksekCVSS 8,8İstismar yokEPSS %7adobe · acrobat9 Ara 2017
- CVE-2016-100537İzleyin
Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR
YüksekCVSS 8,8İstismar yokEPSS %5adobe · flash player12 Mar 2016